CVE-2024-13202

A vulnerability was found in wander-chu SpringBoot-Blog 1.0 and classified as problematic. This issue affects the function modifiyArticle of the file src/main/java/com/my/blog/website/controller/admin/PageController.java of the component Blog Article Handler. The manipulation of the argument content leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

09 Jan 2025, 17:15

Type Values Removed Values Added
References () https://github.com/wander-chu/SpringBoot-Blog/issues/7#issue-2761643235 - () https://github.com/wander-chu/SpringBoot-Blog/issues/7#issue-2761643235 -
Summary
  • (es) Se ha encontrado una vulnerabilidad en wander-chu SpringBoot-Blog 1.0 y se ha clasificado como problemática. Este problema afecta a la función modifiyArticle del archivo src/main/java/com/my/blog/website/controller/admin/PageController.java del componente Blog Article Handler. La manipulación del contenido del argumento provoca cross site scripting. El ataque puede iniciarse de forma remota. El exploit se ha hecho público y puede utilizarse.

09 Jan 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-09 03:15

Updated : 2025-01-09 17:15


NVD link : CVE-2024-13202

Mitre link : CVE-2024-13202

CVE.ORG link : CVE-2024-13202


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-94

Improper Control of Generation of Code ('Code Injection')